• Title/Summary/Keyword: Public Static Analysis tools

Search Result 3, Processing Time 0.017 seconds

A Study on Software Security Vulnerability Detection Using Coding Standard Searching Technique (코딩 표준 검색 기법을 이용한 소프트웨어 보안 취약성 검출에 관한 연구)

  • Jang, Young-Su
    • Journal of the Korea Institute of Information Security & Cryptology
    • /
    • v.29 no.5
    • /
    • pp.973-983
    • /
    • 2019
  • The importance of information security has been increasingly emphasized at the national, organizational, and individual levels due to the widespread adoption of software applications. High-safety software, which includes embedded software, should run without errors, similar to software used in the airline and nuclear energy sectors. Software development techniques in the above sectors are now being used to improve software security in other fields. Secure coding, in particular, is a concept encompassing defensive programming and is capable of improving software security. In this paper, we propose a software security vulnerability detection method using an improved coding standard searching technique. Public static analysis tools were used to assess software security and to classify the commands that induce vulnerability. Software security can be enhanced by detecting Application Programming Interfaces (APIs) and patterns that can induce vulnerability.

Defect-Type Analysis of Regional SW Development Companies using CodeSonar (CodeSonar를 이용한 지역 SW개발 업체의 결함 유형분석)

  • Noh, Jeong-Hyun;Lee, Jong-Min;Park, Yoo-Hyun
    • Journal of the Korea Institute of Information and Communication Engineering
    • /
    • v.19 no.3
    • /
    • pp.683-688
    • /
    • 2015
  • Recently, various static analysis tools for software defect detection are becoming widely used in practice. However, there is little public information of the most frequent defects in commercial areas until now. In this paper, we analyze the defects found by CodeSonar, a static analysis tool that finds defects in C/C++, Java programs. So we report the most frequent defects by various aspects in Dongnam area, Korea.

Ergonomics Job Hazard Evaluation of Building Cleaners

  • Lee, Kyung-Sun;Lee, In-Seok;Kim, Hyun-Joo;Jung-Choi, KyungHee;Bahk, Jin-Wook;Jung, Myung-Chul
    • Journal of the Ergonomics Society of Korea
    • /
    • v.30 no.3
    • /
    • pp.427-435
    • /
    • 2011
  • Objective: The objective of this study was to evaluate a work of building cleaners using the ergonomic methods. Background: Previous studies about cleaning worker describe typical physical demands of this work. They found that the most significant risk factors associated with the physical work of cleaners are static loads and repetitive movements and high output of force. Method: A head of ergonomics estimation was work analysis(define of combined task, work tool, work time and frequency of combined task) and posture analysis of worker. Results: The results showed that combined task of building cleaners was classification sweeping, mopping(wet), mopping(oil), moving barrels/carts, dumping trash bags, scrubbing, arrangement of cleaning tool, arrangement of circumferential, moving of cleaning tool, and waiting. The work time of combined task such as mopping(wet) and scrubbing indicated high ratio. The posture analysis of building cleaners indicated high value in bending of the head, lower arm, and hands. Conclusion: The findings appear to indicate that building cleaner were related to high risk of work-related musculoskeletal disorders. So, building cleaner would be required an interventional strategy, improvement of cleaning tools and working environment. Application: If ergonomics rule can be integrated into existing cleaning tools and work environments, the risk of occupational injuries will be reduced.